› Forums › Security › News (Security) › If it sounds too good to be true, it most likely is: Nobody can decrypt the Dharma ransomware
Tagged: Ecosystem_G10, Security_S12
- This topic is empty.
-
AuthorPosts
-
-
March 30, 2019 at 10:55 am #39786
#News(Security) [ via IoTGroup ]
Headings…
If it sounds too good to be true, it most likely is: Nobody can decrypt the
Not even data recovery companies
If you’re worried that quantum computers will crack your crypto, don’t be –Auto extracted Text……
A data recovery company is dubiously claiming it has cracked decryption of Dharma ransomware – despite there being no known method of unscrambling its files.
Infosec researcher Brett Callow of Emsisoft had a little fun trying to replicate Emsisoft’s exposure of ransomware middleman company Red Mosquito Data Recovery earlier this year, now he has turned his attention in another direction.
Australian biz Fast Data Recovery boasted that it is capable of decrypting Dharma, which data recovery biz Coveware’s chief exec Bill Siegel described as implying “they have tools and computing power beyond that of the NSA”.
Callow posed as a customer (having borrowed his wife’s business email address, with her consent) while contacting Fast Data Recovery, asking if the firm could decrypt encrypted files that mentioned the word Dharma.
Thank you for contacting Fast Data Recovery – The Ransomware Recovery Experts.
If this is an Emergency/URGENT please contact us or reply back to this email to use our Priority Evaluation Service for fast turnaround (4-24 hours) OR 1 HOUR quote for Dharma / Crysis Ransomware.
Dharma ransomware will have the following extensions at the end of your files (COMBO, BIP, GAMMA, JAVA, BRRR, HEETS, ETC, BTC, 888, ADOBE, GAMMA, Phobos).
Our Priority Evaluation service cost[s] $350AUD for most for most type of infections with the exception to [sic] Dharma and Gandcrab infections.
We have a proven track record of 100% ransomware data recovery and back our claim with No Data = No Charge.
Michael Gillespie, creator of ID Ransomware, opined: “There is no way to ‘reverse engineer the ransomware decryption key’ for Dharma.
The only way to recover files encrypted by Dharma is with the ransomware dev’s key.
When Emsisoft’s Callow didn’t reply to the quote, Fast Data Recovery tried again:
Your infection is part of the DHARMA ransomware family.
Our team has been successful in 100% of all dharma ransomware cases presented to our company
Read More..
AutoTextExtraction by Working BoT using SmartNews 1.02976805238 Build 26 Aug 2019
-
-
AuthorPosts
- You must be logged in to reply to this topic.